Sr Principal Cyber Systems Engineer – Cybersecurity (ISSE) (26-431) AHT
Job Description
Northrop Grumman is recruiting a Sr. Principal Cyber Systems Engineer focused on cybersecurity to support the C2BMC Missile Defense Integration program at Schriever Space Force Base in Colorado Springs, CO. The position supports cybersecurity operations by installing, administering, and assessing security capabilities, including endpoint protection, SIEM-based monitoring, STIG assessments, and vulnerability or compliance scanning, with an emphasis on validation work alongside ISSOs.
Role Focus
This NG-Only role centers on securing information systems through hands-on technical implementation and continuous support for control validation activities. You will help configure cybersecurity tooling, improve auditing and detection signal quality, and support requirements-driven compliance using relevant DoD and federal guidance.
Responsibilities
- Install, configure, and administer cybersecurity software for endpoint protection (e.g., antivirus, HIPS, DLP) and endpoint monitoring (e.g., security log and auditing event collection).
- Perform vulnerability and compliance scanning.
- Write and maintain scripts and/or playbooks to automate deployment of cybersecurity agent software to endpoints in a large, virtualized environment.
- Analyze endpoint protection events to identify and filter out false positives and non-security-relevant data, improving information system auditing and reducing alert fatigue.
- Use cybersecurity software to run Security Technical Implementation Guide (STIG) assessments for Windows and Red Hat Enterprise Linux (RHEL) operating systems, virtualization platforms, and endpoint applications (e.g., browsers, word processors).
- Write SIEM queries and build dashboards to visualize security-relevant data for monitoring and analysis.
- Create and manage data pipelines to transform and parse data ingested into SIEM solutions, including adding security-relevant metadata, extracting fields for analysis and reporting, implementing government requirements (e.g., NISPOM, NIST, DoD, ICD), validating established cybersecurity controls, and recommending improvements based on subject matter expertise.
- Support Information System Security Officers (ISSOs) with Control Validation Test (CVT) preparation, including remediating open findings and noncompliant security controls, addressing Plans of Action and Milestones (POA&Ms), and responding to Cyber Tasking Orders (CTOs).
Requirements
- Education and experience: a Bachelor’s Degree in Computer Science, Cybersecurity Engineering, Mathematics, Physics, or a related field plus 8 years of experience; or a Master’s degree with 6 years of relevant work experience; or 12 years of relevant work experience may be considered as an alternative to a degree.
- Maintain a current, active Government-Issued 8140 certification at IAT Level II / IAM Level I or higher (examples include Security+ CE, CCNA-Security, CySA+, CND, etc.) at the time of application, and remain responsible for maintaining 8140 certifications throughout the contract period.
- Have a current, active, in-scope Top Secret security clearance at the time of application (required to start).
- Travel for business needs, 10% of the time.
- Security engineering skills with working knowledge of cybersecurity technology and DoD/Federal cybersecurity guidance (including DoDI 8500.01 and NIST SP 800 53).
- Experience installing, configuring, or administering a SIEM solution.
- Experience installing, configuring, or administering endpoint protection software.
- Experience installing, configuring, or administering vulnerability and compliance scanning software.
- Windows and Linux system administration skills.
Technologies
- Endpoint protection (e.g., antivirus, HIPS, DLP); endpoint monitoring (e.g., security log and auditing event collection)
- SIEM solutions and query/dashboard tooling, including Elastic (SPL, EQL, KQL, ES/QL, Elastic Defend)
- Security Technical Implementation Guide (STIG)
- Windows, Red Hat Enterprise Linux (RHEL)
- NISPOM, NIST, DoD, ICD
- PowerShell, Bash, Ansible
- ACAS (e.g., Tenable Security Center and Nessus), SCAP Compliance Checker (SCC)
- Kubernetes, containers
- DoDI 8500.01, NIST SP 800 53
- 8140 certification (IAT Level II / IAM Level I)
Benefits
- Health Plan
- Savings Plan
- Paid Time Off
- Education Assistance
- Training and Development
- Flexible Work Arrangements
Work Location, Travel, and Clearance
- Location: Colorado Springs, CO (onsite)
- Travel: Yes, 10% of the time
- Relocation assistance: Not available
- On-site only: This position does not provide relocation assistance and requires on-site work with no remote options.
- Clearance required for start: Yes
- Clearance type: Top Secret
Salary
$142,200 - $213,200 per year (primary level salary range).
Education
Bachelor’s degree in Computer Science, Cybersecurity Engineering, Mathematics, Physics, or a related field (as specified in the requirements).